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Top Stories 

• BMW announced a recall October 28 for 86,000 model year 2002 - 2005 Mini Cooper and 
Cooper S vehicles due to a power steering failure issue following 339 consumer 
complaints. - Associated Press (See item 2) 

• New York officials reported October 27 that 4 suspects pleaded guilty and 1 1 others were 
charged for participating in a $3 1 million fraudulent debt collection scheme which misled 
victims into paying debt amounts greater than they owed. - Buffalo News (See item 6) 

• The owner of 2 medical clinics in New York pleaded guilty October 26 to her role in a 
money laundering scheme that defrauded Medicaid and Medicare programs out of $55 
million. - U.S. Department of Justice (See item 16) 

• One person was killed and 20 students were transported to area hospitals following an 
October 27 accident where a school bus collided with another vehicle on U.S. Route 22 in 
Lehigh County, Pennsylvania. - Fox News; Allentown Morning Call (See item 18) 
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Energy Sector 



1. October 28, Norfolk Virginian-Pilot - (Virginia) Salt contamination causing 
thousands of power outages in Hampton Roads. Dominion Virginia Power officials 
announced October 28 that since October 27 over 40,000 customers in the Hampton 
Roads area lost service due to salt contamination from rain that caused issues and 
power outages across the region. Crews worked to restore service. 

Source: http://hamptonroads.com/2015/10/dominion-power-salt-contarnination- 
causing-thousands-power-outages-hampton-roads 

Chemical Industry Sector 

See item 24 

Nuclear Reactors, Materials, and Waste Sector 

Nothing to report 

Critical Manufacturing Sector 

2. October 28, Associated Press - (National) Mini recalls 86,000 cars to fix power 
steering problems. BMW announced a recall October 28 for 86,000 model year 2002 
- 2005 Mini Cooper and Cooper S vehicles due to a power steering failure issue 
following a Federal investigation into 339 consumer complaints including 5 crashes 
and 3 fires as a result of the failure. 

Source: http://www.detroitnews.com/story/business/autos/foreign/2015/10/28/mini- 
recall/74730982/ 

3. October 27, WCNC 36 Charlotte - (National) 93K Jeep Cherokees recalled due to 
fire hazard. Officials from Fiat Chrysler issued a recall October 27 for 94,000 model 
year 2015 Jeep Cherokee vehicles due to a fire hazard caused by the proximity of the 
air conditioning line to the exhaust manifold. Regulators in the U.S. received two 
complaints of smoke and fire prompting the recall. 

Source: http://www.wcnc.com/storv/monev/consumer/2015/10/27/93k-ieep-cherokees- 
recalled-due-to-fire-hazard/74722488/ 

4. October 26, Chicago Tribune; Associated Press - (International) Nissan recalling over 

50.000 vehicles worldwide. Nissan expanded a previous recall October 26 to include 

59.000 model year 2013 - 2016 Altima cars, 2016 Maxima vehicles, and some 2014 - 
2016 Russian-made Teana sedans due to a fire hazard potentially caused by a fuel leak 
from seal located between the fuel sending unit and the gas tank. 

Source: http://www.chicagotribune.com/news/nationworld/ct-nissan-recall-2015 1026- 
story .html 

For another story, see item 24 
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Defense Industrial Base Sector 



Nothing to report 

Financial Services Sector 

5. October 27, KSHB 41 Kansas City - (International) Johnson County man sentenced 
in credit card ID fraud case. A suspect in Johnson County was convicted by the 
Kansas Department of Corrections October 27 in connection to stealing over 500 credit 
card account numbers from Canadian citizens through skimming devices. The suspect 
re-coded the numbers on bank cards in the U.S. 

Source: http ://w w w .kshb .com/news/crime/i ohnson-county-man-sentenced-in-credit- 
card-id-fraud-case 

6. October 27, Buffalo News - (National) Guilty pleas by 4, charges against 11 
announced in federal fraud prosecution of Buffalo debt collectors. The U.S. 
attorney’s office in Manhattan reported October 27 that 4 suspects pleaded guilty and 
1 1 others were charged for participating in a $3 1 million fraudulent debt collection 
scheme in which victims were misled and served threats including felony charges and 
driver’s license suspensions unless they paid debts in amounts greater than they owed. 
Source: http://www.buffalonews.com/city-region/guilty-pleas-by-4-charges-against-ll- 
announced-in-federal-fraud-prosecution-of-buffalo-debt-collectors-20151027 

For another story, see item 23 

Transportation Systems Sector 

7. October 28, Columbia Daily Tribune - (Missouri) Two truckers dead after 1-70 
pileup. A portion of Interstate 70 near mile marker 148 in Callaway County was shut 
down for approximately 2 hours October 27 while crews cleared the debris following a 
7-vehicle accident that killed 2 people and injured 5 others. The cause of the accident 
was reportedly due to wet road conditions. 

Source: http://www.columbiatribune.com/news/local/two-dead-in-interstate- 
crash/article c9edf9 1 f-feeb-5be7-a( )b7-831'28e9a6c 1 8.html 

8. October 27, U.S. Department of Labor - (Iowa) Iowa postal facility exposes mail 
handler to excessive heat. The U.S. Department of Labor reported October 27 that the 
U.S. Postal Service was cited for 1 repeated, 1 serious, and 1 other-than-serious safety 
and health violations at its Ottumwa, Iowa facility October 23 after an investigation 
revealed that the employer exposed workers to excessive heat while delivering mail. 
Proposed penalties total $46,600. 

Source: 

https://www.osha.gov/pls/oshaweb/owadisp.show document?p table=NEWS RELEA 
SES&p id=28953 

9. October 27, Cincinnati Enquirer - (Kentucky) 2 hurt in crash that closed NB 1-71/75 
for 6 hours. Northbound Interstate 71/75 in Erlanger was shut down for 6 hours 



- 3 - 



October 27 while crews responded to a chain reaction accident that involved 4 vehicles, 
including a FedEx truck and semi-truck that injured 2 people. Officials reported that the 
incident was the first of two crashes that closed down the highways. 

Source: http://www.cincinnati.com/story/news/2015/10/27/crash-closes-nb— 275-us- 



50/74668778/ 



Food and Agriculture Sector 

10. October 27, U.S. Food and Drug Administration - (Washington) Gilmore Fish 
Smokehouse is issuing a voluntary recall on all canned sturgeon and salmon 
because of a possible health risk. Dallesport, Washington-based Gilmore Fish 
Smokehouse issued a voluntary recall October 26 of all canned gourmet smoked 
Chinook salmon, fresh packed Pacific salmon, and gourmet smoked Columbia sturgeon 
products after a routine inspection of a Skipanon Brand Seafoods LLC facility found 
contamination with Clostridium botulinum due to under-processing by the contracted 
manufacturer. All products were sold through retail stores in Washington. 

Source: http://www.fda.gov/Safety/Recalls/ucm469689.htm 

11. October 27, U.S. Food and Drug Administration - (National) OleBob’s Seafoods 
canned seafood recall. Ilwaco, Washington-based OleBob’s Seafoods issued a 
voluntary recall October 27 of all canned tuna and salmon products beginning with the 
code “OC” after a routine inspection at a Skipanon Brand Foods FFC facility found 
potential contamination with Clostridium botulinum due to under-processing. All 
products were sold through Washington based retail stores and through Internet sales. 
Source: http://www.fda.gov/Safety/Recalls/ucm469669.htm 

12. October 27, WXMI 17 Grand Rapids - (Michigan) Possible E. coli contamination in 
cider from Uncle John’s Cider Mill. Production of cider at Uncle John’s Cider Mill in 
St. Johns, Michigan, was ceased October 27 pending additional test results after initial 
tests found that the cider may be contaminated with E. coli, potentially affecting 1,200 
gallons of cider produced October 17. Officials urged the public to dispose of the 
purchased cider sold between October 18 and October 21. 

Source: http://fox 1 7 online.com/20 1 5/1 0/27/possible-e-coli-contamination-in-cider- 
from-uncle-johns-cider-mill/ 

13. October 27, K1RO 7 Seattle - (Washington) Uegionnaire’s disease outbreak in 

Wenatchee could be linked to grocery store misters. Public health officials in 
Wenatchee, Washington, reported four cases of Fegionnaire’s disease October 27 
possibly originating from the produce section at a Safeway on North Miller Street. The 
grocery store temporarily closed down the misters during the ongoing investigation. 
Source: http://www.kirotv.com/news/news/legionnaires-disease-outbreak-wenatchee- 

could-be-l/nn9qq/ 

For another story, see item 24 
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Water and Wastewater Systems Sector 



14. October 28, Associated Press - (Missouri) Crews cleaning up sewage spill near St. 
Louis-area landfill. The Metropolitan St. Louis Sewer District reported that crews 
worked to clean up a backed- up sewer line at the landfill’s pump station that caused 
nearly 11,000 gallons of pretreated sewage water to spill at the Bridgeton Landfill west 
of St. Louis October 28. The spill was contained and posed no immediate public safety 
threat. 

Source: http://www.bnd.com/news/state/missouri/article41667618.html 
For another story, see item 24 

Healthcare and Public Health Sector 

15. October 27, Fort Wayne Journal Gazette - (Indiana) Secretary charged in theft from 
business. Police arrested and charged a New Haven woman October 27 for allegedly 
using a company credit card and checks to steal $140,000 from the Interdisciplinary 
Diagnostic Evaluation Center, formerly in Fort Wayne, for personal expenses. 

Source: http://www.iournalgazette.net/news/local/police-fire/Secretary-charged-in- 
theft-from-business-95 84805 



16. October 26, U.S. Department of Justice - (New York) Owner of two New York 
medical clinics pleads guilty to role in $55 million health care fraud scheme. The 

U.S. Department of Justice announced October 26 that the owner of 2 medical clinics 
in New York pleaded guilty to her role in a money laundering scheme that defrauded 
Medicaid and Medicare programs of $55 million by offering patients kickbacks to 
allow medically unnecessary therapy, testing, and office visits that were never 
performed by licensed professional. The suspect admitted to diverting funds deposited 
into the clinics’ bank accounts by the Federal programs to herself, co-conspirators, and 
patients instead. 

Source: http://www.iustice.gov/opa/pr/owner-two-new-york-medical-clinics-pleads- 
guilty-role-55-million-health-care- fraud-scheme 

For another story, see item 13 

Government Facilities Sector 

17. October 27, CBS News; Associated Press - (National) CIA director speaks out about 
email hack. The director of the CIA stated October 27 that the hack of his personal 
email account underlines that the fact that people are vulnerable to potentially having 
their personal information compromised on the Internet. The incident remains under 
investigation after the hacker allegedly reported the method of obtaining the sensitive 
information through an online publication. 

Source: http://www.cbsnews.com/news/cia-director-iohn-brennan-speaks-out-on-email- 
hack / 



18. October 27, Fox News; Allentown Morning Call - (Pennsylvania) One person killed 



in Pennsylvania crash involving Lehigh University bus. One person was killed and 
20 students were transported to area hospitals with minor injuries following an October 
27 accident where a school bus transporting Lehigh University students collided with 
another vehicle on U.S. Route 22 in Lehigh County before flipping onto its roof. 

Source: http://www.foxnews.com/us/2015/10/27/13-reportedly-iniured-in- 
pennsylvania-crash-involving-lehigh-university-bus/ 

19. October 27, KRDO 13 Colorado Springs - (Colorado) 6,400 marijuana plants found 
growing illegally at three Pueblo County sites. The Pueblo County Sheriff s Office 
found an illegal marijuana grow operation in the San Isabel National Forest in Colorado 
where at least 6 suspects harvested about 2,400 out of 6,400 marijuana plants, and 
created a sophisticated watering system connecting drip lines to every plant. Officials 
estimated that the total cost of the operation was about $15,000. 

Source: http://www.krdo.com/news/6400-mariiuana-plants-found-growing-in-three- 
illegal-grows-in-pueblo-county/36083472 

20. October 27, Wisconsin State Journal - (Wisconsin) O’Keeffe Middle School 
evacuated again, pepper spray found to be irritant. O’Keeffe Middle School in 
Madison was evacuated for approximately 3 hours October 27 while crews ventilated 
the building after a student released pepper spray in the school causing teachers and 
students to suffer throat irritation and bouts of extended coughing. 

Source: http://host.madison.com/wsi/news/local/o-keeffe-middle-school-evacuated- 
again-pepper-spray-found-to/article daa5128a-0e!6-565c-aac9-6ce46cc5 19e2.html 

21. October 27, WXM1 17 Grand Rapids - (Michigan) Marshall High School evacuated 
for chlorine leak. A chlorine leak at the pool prompted the evacuation and dismissal of 
classes at Marshall High School in Michigan October 27. The school was cleared for 
occupancy after several hours and classes were scheduled to resume October 28. 

Source: http://foxl7online.com/2015/10/27/marshall-high-school-evacuated-for- 
chlorine-leak/ 



Emergency Services Sector 

Nothing to report 

Information Technology Sector 

22. October 28, Softpedia - (International) Adobe patches critical vulnerability in 
Shockwave Player. Adobe released a patch resolving a memory corruption 
vulnerability in its Shockwave Player 12.2.0.162 for Windows and Mac user after 
researchers from Fortinet’s Fortiguard Labs discovered that the vulnerability allowed 
attackers to compromise remote computers and execute remote code, allowing full 
control of the operating system without the victim being aware. 

Source: http://www.securitvweek.com/adobe-patches-critical-vulnerability-shockwave- 
player 

23. October 28, Softpedia - (International) Oracle EBS fixed against XSS, XXE, and 
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SQL injection vulnerabilities. Oracle released patches for 154 fixes addressing 
vulnerabilities in several of its products including six found by ERPScan researchers in 
the Oracle E-Business Suite (Oracle EBS) including 3 XXE (XML External Entity) 
injection vulnerabilities, a user enumeration flaw, a cross-site scripting (XSS) problem, 
and a Structured Query Language (SQL) flaw that could potentially give attackers 
administrative rights over the Oracle EBS and its subsequent applications to access 
sensitive company data including financial, human resources, supply chain, and 
customer support departments. 

Source: http://news.softpedia.com/news/oracle-ebs-fixed-against-xss-xxe-and-sql- 
injection-vulnerabilities-495419.shtml 

24. October 28, Securityweek - (International) Flaws in Rockwell PLCs expose 
operational networks. Rockwell Automation released firmware updates and 
mitigations addressing several vulnerabilities in its 1400 programmable logic 
controllers (PLCs) and its MicroLogix 1 100 products including a buffer overflow bug 
that remotely crashes affected devices or executes arbitrary code, and a denial-of- 
service (DoS) bug dubbed “FrostyURL” that can be exploited to crash MicroLogix 
PLCs via a specially crafted uniform resource locator (URL) sent to victims through 
email, and a cross-site scripting (XSS) vulnerability that can be exploited to inject 
malicious JavaScript code in a device’s Web server, among others. 

Source: http://www.securityweek.com/flaws-rockwell-plcs-expose-operational- 
networks 



Internet Alert Dashboard 



To report cyber infrastructure incidents or to request information, please contact US-CERT at soc@us-cert.gov or 
visit their Web site: http://www.us-cert.gov 

Information on IT information sharing and analysis can be found at the IT ISAC (Information Sharing and 
Analysis Center) Web site: http://www.it-isac.org 



Communications Sector 

Nothing to report 

Commercial Facilities Sector 

25. October 28, WDHD 7 Boston - (Massachusetts) Lynn apartment building left gutted 
by fire. Thirty-one residents from a Lynn apartment complex were displaced October 
28 after a fire began on the second floor of the 3-story building October 27 and caused 
extensive damage to the facility. The incident was contained and no injuries were 
reported. 

Source: http://www.whdh.com/storv/30370626/lvnn-apartment-building-left-gutted-bv- 
fire 

26. October 27, Terre Haute Tribune-Star - (Indiana) Small fire causes evacuation at 
Light House Mission. An October 26 fire caused by a cigarette prompted the 
evacuation of 52 residents from the Light House Mission in Terre Haute for several 



hours while crews cleared the smoke. No injuries were reported. 

Source: http://www.tribstar.com/news/local news/small-fire-causes-evacuation-at- 
light-house-mission/article 6fe77aaf-db2e-5464-9c58-eb367020ff49.html 

For another story, see item 13 



Dams Sector 



Nothing to report 
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Department of Homeland Security (DHS) 

DHS Daily Open Source Infrastructure Report Contact Information 

About the reports - The DHS Daily Open Source Infrastructure Report is a daily [Monday 
through Friday] summary of open-source published information concerning significant critical 
infrastructure issues. The DHS Daily Open Source Infrastructure Report is archived for 10 days on 
the Department of Homeland Security Web site: http://www.dhs.gov/lPDailyReport 

Contact Information 

Content and Suggestions: Send mail to cikr.productfeedback@hq.dhs.gov or contact the DHS 

Daily Report Team at (703) 942-8590 

Subscribe to the Distribution List: Visit the DHS Daily Open Source Infrastructure Report and follow 

instructions to Get e-mail updates when this information changes . 

Removal from Distribution List: Send mail to support @ govdelivery.com . 



Contact DHS 

To report physical infrastructure incidents or to request information, please contact the National Infrastructure 
Coordinating Center at nicc@hq.dhs.gov or (202) 282-9201. 

To report cyber infrastructure incidents or to request information, please contact US-CERT at soc@us-cert.gov or visit 
their Web page at www.us-cert. gov . 

Department of Homeland Security Disclaimer 

The DHS Daily Open Source Infrastructure Report is a non-commercial publication intended to educate and inform 
personnel engaged in infrastructure protection. Further reproduction or redistribution is subject to original copyright 
restrictions. DHS provides no warranty of ownership of the copyright, or accuracy with respect to the original source 
material. 
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